Feedback keeps a question bank alive, and PassSureExam collects it constantly from CAU201 candidates, running regular reviews of the CyberArk Defender material so that what you study reflects the exam as it is, not as it was.
CyberArk CAU201 Exam Overview:
| Certification Vendor: | CyberArk |
|---|---|
| Exam Name: | CyberArk Defender |
| Exam Number: | CAU201 |
| Exam Duration: | 90 minutes |
| Available Languages: | English |
| Related Certifications: | CyberArk Guardian CyberArk Sentry |
| Exam Price: | USD 200 |
| Passing Score: | 70% |
| Exam Format: | Multiple-choice questions |
| Real Exam Qty: | 65 |
| Sample Questions: | ![]() |
| Exam Way: | Proctored exam at authorized testing centers or designated online proctoring partner |
| Pre Condition: | Recommended to have hands-on experience with CyberArk Privileged Access Security and PAM Administration training |
| Official Syllabus URL: | https://www.cyberark.com/services-support/certification/ |
CyberArk CAU201 Exam Syllabus Topics:
| Section | Objectives |
|---|---|
| User Management Configuration | |
| Application Management | |
| Ongoing Maintenance | |
| Password Management Configuration | |
| Security and Audit | |
| Account Onboarding | |
| Session Management Configuration |
CAU201 Exam Facts and the Service Behind Them
- Ongoing Maintenance ()
- Session Management Configuration ()
- User Management Configuration ()
CyberArk Defender Sample Questions:
Which of the following Privileged Session Management solutions provide a detailed audit log of session activities?
- A. PSM for Windows (previously known as RDP Proxy)
- B. All of the above
- C. PSM for SSH (previously known as PSM SSH Proxy)
- D. PSM (i.e., launching connections by clicking on the "Connect" button in the PVWA)
Correct Answer: D π³οΈ
Which certificate type do you need to configure the vault for LDAP over SSL?
- A. a CA signed Certificate for the Vault server
- B. a self-signed Certificate for the Vault
- C. a CA signed Certificate for the PVWA server
- D. the CA Certificate that signed the certificate used by the External Directory
Correct Answer: D π³οΈ
When a group is granted the 'Authorize Account Requests' permission on a safe Dual Control requests must be approved by
- A. Every person from that group
- B. That access cannot be granted to groups
- C. Any one person from that group
- D. The number of persons specified by the Master Policy
Correct Answer: D π³οΈ
You need to recover an account localadmin02 for target server 10.0.123.73 stored in Safe Team1.
What do you need to recover and decrypt the object? (Choose three.)
- A. Recovery Public Key
- B. Recover.exe
- C. Recovery Private Key
- D. Vault data
- E. Server Key
- F. Master Password
Correct Answer: A,C,E π³οΈ
Which report provides a list of account stored in the vault.
- A. Active Log
- B. Privileged Accounts Inventory
- C. Entitlement Report
- D. Privileged Accounts Compliance Status
Correct Answer: B π³οΈ



